Thomson Reuters

Senior Cyber Compliance & Audit analyst

Join Thomson Reuters in Richmond, VA as a Senior Cyber Compliance & Audit Analyst. Leverage ServiceNow for ITGC, SoX, and SOC compliance. 4+ years experience required. Hybrid work model and career growth offered.

ServiceNow Role Type:
Department - JobBoardly X Webflow Template
System Administrator
ServiceNow Modules:
Department - JobBoardly X Webflow Template
Governance, Risk, and Compliance
ServiceNow Certifications (nice to have):
Department - JobBoardly X Webflow Template
Certified System Administrator

Job description

Date - JobBoardly X Webflow Template
Posted on:
 
April 18, 2025

We are looking for a Senior Cyber Compliance & Audit analyst to assess, challenge, and test the design and operational effectiveness of controls using TR's control framework. The ideal candidate will have a background in IT, Accounting, Finance, or equivalent education and experience, and at least 4+ years of relevant work experience in SoX, ITGC, SOC, PCI within Audit, Big 5, consulting firms or as line 1a or line 1b completing IT-IS Control testing or working within a Governance or Compliance function across Financial Services organizations.

Requirements

  • Bachelor's degree in IT, Accounting, Finance or equivalent education and experience (preferable)
  • At least 4+ years of relevant work experience in SoX, ITGC, SOC, PCI within Audit, Big 5, consulting firms or as line 1a or line 1b completing IT-IS Control testing or working within a Governance or Compliance function across Financial Services organizations
  • One of these certifications in order of preference is essential CISA, CISSP, CCAK, CISM, CRISC or ISO (preferred)
  • Strong ethical principles and understanding of business and IS ethics
  • Awareness about common security vulnerabilities of web and cloud applications and operating techniques from sources such as SANS, OWASP Top10 and Cloud Security Alliance (CSA)
  • Experience in testing Cloud controls and related technologies will be an asset
  • Excellent oral and written communication skills in English
  • Additional expertise in French, Spanish or another language will be an asset
  • Knowledge about GRC platforms like ServiceNow, Process Unity, RSA Archer, MetricStream and like

Benefits

  • Hybrid Work Model
  • Flexibility & Work-Life Balance
  • Career Development and Growth
  • Industry Competitive Benefits
  • Culture
  • Social Impact
  • Making a Real-World Impact

Requirements Summary

Bachelor's degree, 4+ years of experience, and one of the following certifications: CISA, CISSP, CCAK, CISM, CRISC or ISO